If you subscribed to New Yorker, Vogue, or WIRED, your accounts may be breached
32 million accounts may have been exposed.

Photo by Robert Alexander via Getty Images
- A hacker claims to be selling 32.8 million Condé Nast user records for $15,000.
- The alleged data includes email addresses, names, phone numbers, birthdays, and home address details.
- Researchers who reviewed a 5,000-record sample said the data appears genuine, not generated.
- Readers of Vogue, WIRED, GQ, and The New Yorker should watch for targeted scams.
Key Takeaways by nexos.ai, reviewed by Cybernews staff.
Condé Nast, the media giant that owns Vogue, The New Yorker, GQ, Glamour, WIRED, and other well-known titles, has been allegedly hacked, with over 32 million accounts put up for sale.
A database allegedly containing 32.8 million Condé Nast user records is being offered for $15,000 on a notorious Russian cybercrime forum.
Subscribers and readers of Condé Nast publications should stay cautious, as the exposed data may increase the risk of targeted social engineering attacks.
Founded in 1909, Condé Nast has a broad readership. The company manages 37 brands in 26 languages. Combined, its brands reach more than 72 million consumers in print, 394 million in digital, and 454 million across social media.With around 6,000 employees worldwide, the company reported more than $2 billion in annual revenue.
In their post, the seller claims the stolen database contains 32,815,767 unique email addresses, along with other sensitive data that includes:
- Account ID
- Creation date
- Phone
- Gender
- First name
- Last name
- Birthday
- Two address lines
- City
- Zip code
- State
- Country
Attackers provided a 5,000-record sample to back up their claims.
“It is genuine Condé Nast account data, captured in September and October 2025,” said Ransomnews researchers who reviewed the sample.
There are no indications that the data in the sample was generated. One of the indicators researchers describe is that the names belong to the actual email addresses.
“Among the 1,558 rows with a full name, 61.9% have that name, or an initial-plus-surname form of it, inside the email address,” Ransomnews researchers state. “When we shuffled the names between rows and ran the same test, the match rate fell to 0.3%. Generated data does not produce that correlation – only records where the same person typed both fields do.”
According to the report, accounts in the sample were registered between February 9th, 1999, and October 23rd, 2025.
The alleged attacker states in their post on a hacker forum that the database “comes with the same database but with WIRED.com records removed because we leaked the WIRED.com database before (subset of this database).”
Such a claim may indicate that the same threat actor was also behind the WIRED breach in December, 2025. At the time, a dataset with over 2 million records was published.
Stay updated with our latest stories and follow us on social media
Be the first to discover new stories, ideas, and updates from our team.